Description
Full-cone NAT behavior can be added to Linux netfilter setups that need MASQUERADE to behave differently for peer-to-peer, gaming, or specialized network scenarios. It is intended for administrators who understand NAT policy.
Kernel modules affect low-level networking and can break connectivity if configured incorrectly. Use it only when the system really needs full-cone SNAT and when recovery access is available.